SourceCodester Web-based Pharmacy Product Management System 1.0 is vulnerable to Incorrect Access Control, which allows low-privileged users to forge high privileged (such as admin) sessions and perform sensitive operations such as adding new users.
Metrics
Affected Vendors & Products
References
History
Tue, 16 Sep 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
cvssV3_1
|
Mon, 15 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SourceCodester Web-based Pharmacy Product Management System 1.0 is vulnerable to Incorrect Access Control, which allows low-privileged users to forge high privileged (such as admin) sessions and perform sensitive operations such as adding new users. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-09-15T00:00:00.000Z
Updated: 2025-09-16T17:27:38.915Z
Reserved: 2025-08-16T00:00:00.000Z
Link: CVE-2025-56274
Updated: 2025-09-16T13:43:33.722Z
Status : Undergoing Analysis
Published: 2025-09-15T22:15:34.197
Modified: 2025-09-16T18:16:01.140
Link: CVE-2025-56274
No data.